Cześć, Problem jak w tytule, jak mogę się od tego dziadostwa uwolnić? Załączam skan z FRST.
Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 11-05-2022
Uruchomiony przez Marcin (administrator) DESKTOP-ADG3H9V (Micro-Star International Co., Ltd MS-7B86) (11-05-2022 12:07:06)
Uruchomiony z C:\Users\Marcin\Downloads
Załadowane profile: Marcin
Platform: Microsoft Windows 11 Pro Wersja 21H2 22000.613 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Chrome
Tryb startu: Normal
==================== Procesy (filtrowane) =================
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe - & gt; ) (Malwarebytes Inc - & gt; Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe - & gt; ) (Malwarebytes Inc - & gt; Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe - & gt; ) (Microsoft Windows Publisher - & gt; Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCopyAccelerator.exe
(C:\ProgramData\Wargaming.net\GameCenter\wgc.exe - & gt; ) (Wargaming.net Limited - & gt; Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\dlls\wgc_renderer_host.exe & lt; 3 & gt;
(C:\ProgramData\Wargaming.net\GameCenter\wgc.exe - & gt; ) (Wargaming.net Limited - & gt; Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\WargamingErrorMonitor.exe
(C:\Users\Marcin\AppData\Local\Temp\24qrrXHyyao7PIDSMXbgocvqIlv\services.exe - & gt; ) (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Users\Marcin\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe
(C:\Users\Marcin\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe - & gt; ) (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\Marcin\AppData\Local\Temp\1xq0MkKMTM0YtEl1JnXJ2x0ArfP\dll-propagation.exe & lt; 3 & gt;
(C:\Users\Marcin\AppData\Roaming\.dllbackups\dllruntime.exe - & gt; ) (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\Marcin\AppData\Local\Temp\24qrrXHyyao7PIDSMXbgocvqIlv\services.exe & lt; 4 & gt;
(explorer.exe - & gt; ) (AVB Disc Soft, SIA - & gt; Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(explorer.exe - & gt; ) (Google LLC - & gt; Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe & lt; 14 & gt;
(explorer.exe - & gt; ) (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Users\Marcin\AppData\Roaming\.dllbackups\dllruntime.exe
(explorer.exe - & gt; ) (Wargaming.net Limited - & gt; Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe
(Kilonova LLC - & gt; Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.5.0.7\Lightshot.exe
(Microsoft Windows Publisher - & gt; Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe
(Oracle America, Inc. - & gt; Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe - & gt; ) (Adobe Inc. - & gt; Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe - & gt; ) (Adobe Inc. - & gt; Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe - & gt; ) (Adobe Inc. - & gt; Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(services.exe - & gt; ) (AVB Disc Soft, SIA - & gt; Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe - & gt; ) (Malwarebytes Inc. - & gt; Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe - & gt; ) (Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe - & gt; ) (Microsoft Windows Publisher - & gt; Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe
(services.exe - & gt; ) (Microsoft Windows Publisher - & gt; Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe
(services.exe - & gt; ) (Nvidia Corporation - & gt; NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_799504293a3d3200\Display.NvContainer\NVDisplay.Container.exe & lt; 2 & gt;
(services.exe - & gt; ) (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_d92d7bec4b020758\RtkAudUService64.exe & lt; 2 & gt;
(services.exe - & gt; ) (SEIKO EPSON CORPORATION - & gt; Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(services.exe - & gt; ) (TeamViewer Germany GmbH - & gt; TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(svchost.exe - & gt; ) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2203.4603.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe - & gt; ) (Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\dllhost.exe & lt; 2 & gt;
(svchost.exe - & gt; ) (Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Rejestr (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
HKLM\...\Run: [RtkAudUService] = & gt; C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_d92d7bec4b020758\RtkAudUService64.exe [1372264 2021-10-13] (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor)
HKLM\...\Run: [SteelSeriesGG] = & gt; C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [14880592 2022-03-07] (SteelSeries ApS - & gt; SteelSeries ApS)
HKLM\...\Run: [AdobeAAMUpdater-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated - & gt; Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. - & gt; Adobe Systems, Incorporated)
HKLM\...\Run: [CL-26-74B147AE-F802-47A7-8DAC-3712F66A3918] = & gt; " C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-26-74B147AE-F802-47A7-8DAC-3712F66A3918\setuplauncher.exe " /run:Installer.exe /args: " /setup-folder: " CL-26-74B147AE-F802-47A7-8DAC-3712F66 (dane wartości zawierają 7 znaków więcej). (Brak pliku)
HKLM-x32\...\Run: [Adobe CCXProcess] = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [114824 2020-06-06] (Adobe Inc. - & gt; )
HKLM-x32\...\Run: [Lightshot] = & gt; C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-21] (Kilonova LLC - & gt; )
HKLM-x32\...\Run: [Acrobat Assistant 8.0] = & gt; C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3499640 2017-03-28] (Adobe Systems, Incorporated - & gt; Adobe Systems Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707768 2022-03-10] (Oracle America, Inc. - & gt; Oracle Corporation)
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\Run: [Steam] = & gt; C:\Program Files (x86)\Steam\steam.exe [4279208 2022-03-14] (Valve Corp. - & gt; Valve Corporation)
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\Run: [DAEMON Tools Lite Automount] = & gt; C:\Program Files\DAEMON Tools Lite\DTAgent.exe [408936 2021-05-15] (AVB Disc Soft, SIA - & gt; Disc Soft Ltd)
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\Run: [FACEIT] = & gt; C:\Users\Marcin\AppData\Local\FACEIT\update.exe [2204984 2021-05-22] (FACE IT LIMITED - & gt; )
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\Run: [Wargaming.net Game Center] = & gt; C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2151360 2022-02-16] (Wargaming.net Limited - & gt; Wargaming.net)
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\Run: [com.squirrel.Teams.Teams] = & gt; C:\Users\Marcin\AppData\Local\Microsoft\Teams\Update.exe [2492128 2022-04-04] (Microsoft 3rd Party Application Component - & gt; Microsoft Corporation)
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\Run: [electron.app.dllservices] = & gt; C:\Users\Marcin\AppData\Roaming\.dllbackups\dllruntime.exe [63160117 2022-05-09] (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu]
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\Run: [electron.app.services] = & gt; C:\Users\Marcin\AppData\Roaming\.dllbackups\dllruntime.exe [63160117 2022-05-09] (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu]
HKU\S-1-5-21-3981766466-3332502653-323702964-1001\...\MountPoints2: {bb1bf152-5277-11ec-a49e-d8e43e17a5a2} - " G:\OnePlus_setup.exe " /s
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated - & gt; Adobe Systems Inc)
HKLM\...\Print\Monitors\EPSON L386 Series 64MonitorBE: C:\Windows\system32\E_YLMBRPE.DLL [182784 2015-12-09] (Microsoft Windows Hardware Compatibility Publisher - & gt; SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] - & gt; C:\Program Files\Google\Chrome\Application\101.0.4951.54\Installer\chrmstp.exe [2022-05-03] (Google LLC - & gt; Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] - & gt;
Policies: C:\ProgramData\NTUSER.pol: Ograniczenia & lt; ==== UWAGA
==================== Zaplanowane zadania (filtrowane) ============
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
Task: {194C2B83-3BD6-462E-A6EE-1A729BE35FA8} - System32\Tasks\{5E9C47D5-C2A3-4B5B-9646-23F9F5362F1A} = & gt; C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exe - & gt; /i " C:\Users\Marcin\AppData\Local\Temp\MTGAinstall\MTGAInstaller.msi " AI_SETUPEXEPATH= " C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exe " SETUPEXEDIR= " C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\ " ADDLOCAL=MainFeature,MicrosoftVisualC ALLUSERS= " 1 " PRIMARYFOLDER= " APPDIR " ROOTDRIVE= " D:\ " AI_PREREQFILES= " C:\Users\Marcin\AppData\Roaming\Wizards of the Coast\MTGA Launcher\prerequisites\Visual C++ Redistributable for Visual Studio 2015-2019\VC_redist.x64_14_29_30135.exe " AI_PREREQDIRS= " C:\Users\Marcin\AppData\Roaming " AI_MISSING_PREREQS= " Visual C++ Redistributable for Visual Studio 2017 x64 " AI_SETUPEXEPATH= " C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exe " SETUPEXEDIR= " C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\ " AI_INSTALL= " 1 " BIPROCESSTIME= " 2021-11-22T12:06:04.4823119Z " TARGETLOCKED= " TRUE " TARGETDIR= " D:\ " APPDIR= " C:\Program Files\Wizards of the Coast\MTGA\ " AI_SETUPEXEPATH_ORIGINAL= " C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exe "
Task: {1A8B2912-3A4E-43D9-B003-7D87984899FA} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-07] (Google LLC - & gt; Google LLC)
Task: {2A01C259-AFA8-4AD0-BF35-C6D00B743CCB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 = & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6536184 2022-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {431CAF1B-4464-4112-9B37-D98D7A7191E5} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon = & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115632 2022-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {5BCFDDA0-79E7-43F0-9360-514939557035} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-07] (Google LLC - & gt; Google LLC)
Task: {5BF25B68-E717-4B77-88AD-4343BA17555B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB = & gt; C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task " 308046B0AF4A39CB "
Task: {68BBCF66-EF36-49FB-8B26-B0D7BD26A544} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor = & gt; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22890448 2022-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {8E02F420-F967-412B-ADD6-38856424B348} - System32\Tasks\AdobeGCInvoker-1.0 = & gt; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. - & gt; Adobe Systems, Incorporated)
Task: {9332FA51-8746-4B82-AC86-B14A29804617} - System32\Tasks\Adobe Acrobat Update Task = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. - & gt; Adobe Inc.)
Task: {B3530A38-7FF9-4E53-B819-8FD395F5082D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 = & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6536184 2022-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {B8F5C624-81D3-46D1-B409-BFB8A40961EC} - System32\Tasks\EPSON L386 Series Update {F4D47997-B875-4C33-92E5-2431B5EEB6CE} = & gt; C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRPE.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION - & gt; SEIKO EPSON CORPORATION)
Task: {CC37A5ED-B50C-4E76-A8D8-20A7E36E20CE} - System32\Tasks\klcp_update = & gt; C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2022-03-16] () [Brak podpisu cyfrowego]
Task: {D05123FF-B245-4582-A5F4-186AD56EEBEB} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 = & gt; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22890448 2022-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {D994EFC7-3687-4842-A059-6910F6867AB1} - System32\Tasks\update-S-1-5-21-3981766466-3332502653-323702964-1001 = & gt; C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot - & gt; TODO: & lt; Company name & gt; )
Task: {E6077670-5C88-4372-941B-E1ECCFB1CCDC} - System32\Tasks\Microsoft\Office\Office Feature Updates = & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115632 2022-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {FAAD232E-8394-47B0-B27C-5443068DE9FA} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB = & gt; C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {FFE4693A-D652-486E-8E47-B0AC90533356} - System32\Tasks\update-sys = & gt; C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot - & gt; TODO: & lt; Company name & gt; )
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
Task: C:\WINDOWS\Tasks\EPSON L386 Series Update {F4D47997-B875-4C33-92E5-2431B5EEB6CE}.job = & gt; C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRPE.EXE:/EXE:{F4D47997-B875-4C33-92E5-2431B5EEB6CE} /F:UpdateWORKGROUP\DESKTOP-ADG3H9V$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\update-S-1-5-21-3981766466-3332502653-323702964-1001.job = & gt; C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job = & gt; C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\{5E9C47D5-C2A3-4B5B-9646-23F9F5362F1A}.job = & gt; C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exeѤ/i C:\Users\Marcin\AppData\Local\Temp\MTGAinstall\MTGAInstaller.msi AI_SETUPEXEPATH=C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exe SETUPEXEDIR=C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\ ADDLOCAL=MainFeature,MicrosoftVisualC ALLUSERS=1 PRIMARYFOLDER=APPDIR ROOTDRIVE=D:\ AI_PREREQFILES=C:\Users\Marcin\AppData\Roaming\Wizards of the Coast\MTGA Launcher\prerequisites\Visual C++ Redistributable for Visual Studio 2015-2019\VC_redist.x64_14_29_30135.exe AI_PREREQDIRS=C:\Users\Marcin\AppData\Roaming AI_MISSING_PREREQS=Visual C++ Redistributable for Visual Studio 2017 x64 AI_SETUPEXEPATH=C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exe SETUPEXEDIR=C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\ AI_INSTALL=1 BIPROCESSTIME=2021-11-22T12:06:04.4823119Z TARGETLOCKED=TRUE TARGETDIR=D:\ APPDIR=C:\Program Files\Wizards of the Coast\MTGA\ AI_SETUPEXEPATH_ORIGINAL=C:\Program Files\Wizards of the Coast\MTGA\MTGALauncher\Updates\MTGAInstaller_1.0.95.809059.exe
==================== Internet (filtrowane) ====================
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
Tcpip\Parameters: [DhcpNameServer] 62.179.1.62 62.179.1.63
Tcpip\..\Interfaces\{a11e4e76-8d00-406f-a0e5-c74a8afcbf0a}: [DhcpNameServer] 62.179.1.62 62.179.1.63
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Marcin\AppData\Local\Microsoft\Edge\User Data\Default [2022-05-10]
Edge HomePage: Default - & gt; hxxp://www.msn.com/?pc=ASTE
Edge Extension: (MyJDownloader Browser Extension) - C:\Users\Marcin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2021-10-19]
Edge Extension: (TronLink) - C:\Users\Marcin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ibnejdfjmmkpcnlpebklmnkoeoihofec [2022-05-10]
Edge Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Marcin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2022-03-22]
Edge Extension: (MetaMask) - C:\Users\Marcin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2022-05-10]
FireFox:
========
FF DefaultProfile: 7gwt6xcy.default
FF ProfilePath: C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\7gwt6xcy.default [2022-05-11]
FF ProfilePath: C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\nib8lvps.default-release [2022-05-11]
FF Extension: (Browsec VPN - Free VPN for Firefox) - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\nib8lvps.default-release\Extensions\browsec@browsec.com.xpi [2022-04-16]
FF Extension: (MetaMask) - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\nib8lvps.default-release\Extensions\webextension@metamask.io.xpi [2022-04-16]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2022-02-24] [Przestarzałe]
FF Plugin: @java.com/DTPlugin,version=11.331.2 - & gt; C:\Program Files\Java\jre1.8.0_331\bin\dtplugin\npDeployJava1.dll [2022-04-19] (Oracle America, Inc. - & gt; Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.331.2 - & gt; C:\Program Files\Java\jre1.8.0_331\bin\plugin2\npjp2.dll [2022-04-19] (Oracle America, Inc. - & gt; Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.14 - & gt; C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-05-10] (VideoLAN - & gt; VideoLAN)
FF Plugin: Adobe Acrobat - & gt; C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [Brak pliku]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 - & gt; C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-05] (Microsoft Corporation - & gt; Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-03-05] (Microsoft Corporation - & gt; Microsoft Corporation)
FF Plugin-x32: Adobe Acrobat - & gt; C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-03-28] (Adobe Systems, Incorporated - & gt; Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default [2022-05-11]
CHR Notifications: Default - & gt; hxxps://www.pudelek.pl
CHR Extension: (Terra Station Wallet) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiifbnbfobpmeekipheeijimdpnlpgpp [2022-05-03]
CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-04-27]
CHR Extension: (AutohelperBot) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fojpkmgahmlajoheocnkebaoodepoekj [2022-03-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-04-25]
CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2022-03-17]
CHR Extension: (MetaMask) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2022-05-11]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-07]
CHR Profile: C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-05-11]
CHR Profile: C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-05-11]
CHR Extension: (Prezentacje) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-12-19]
CHR Extension: (Dokumenty) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-12-19]
CHR Extension: (Dysk Google) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-12-19]
CHR Extension: (YouTube) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-12-19]
CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-03-24]
CHR Extension: (Arkusze) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-12-19]
CHR Extension: (Dokumenty Google offline) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-04-18]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-19]
CHR Extension: (Gmail) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-12-19]
CHR Profile: C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\System Profile [2022-05-11]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-03-28]
==================== Usługi (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. - & gt; Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. - & gt; Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. - & gt; Adobe Systems, Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11758536 2022-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4816224 2021-05-15] (AVB Disc Soft, SIA - & gt; Disc Soft Ltd)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [145224 2017-02-27] (SEIKO EPSON CORPORATION - & gt; Seiko Epson Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8524512 2022-05-09] (Malwarebytes Inc. - & gt; Malwarebytes)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6207696 2022-03-30] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
S3 SteelSeriesUpdateService; C:\Program Files\SteelSeries\GG\SteelSeriesUpdateService.exe [31568 2022-03-07] (SteelSeries ApS - & gt; )
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [14770472 2021-09-15] (TeamViewer Germany GmbH - & gt; TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-08] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-08] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
S3 FACEITService; " C:\Program Files\FACEIT AC\faceitservice.exe " [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_799504293a3d3200\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_799504293a3d3200\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Sterowniki (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 - & gt; Apple Inc.)
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [180224 2021-06-05] (Microsoft Corporation) [Brak podpisu cyfrowego]
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2021-05-15] (AVB Disc Soft, SIA - & gt; Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2021-05-15] (AVB Disc Soft, SIA - & gt; Disc Soft Ltd)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [103888 2022-05-09] (Microsoft Windows Hardware Compatibility Publisher - & gt; Malwarebytes)
S3 Hsp; C:\WINDOWS\System32\drivers\Hsp.sys [110904 2022-02-11] (Microsoft Windows - & gt; Microsoft Corporation)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-05-11] (Microsoft Windows Hardware Compatibility Publisher - & gt; Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-05-09] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [194512 2022-05-11] (Microsoft Windows Hardware Compatibility Publisher - & gt; Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [70088 2022-05-11] (Microsoft Windows Hardware Compatibility Publisher - & gt; Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239560 2022-05-09] (Microsoft Windows Hardware Compatibility Publisher - & gt; Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181992 2022-05-11] (Malwarebytes Inc. - & gt; Malwarebytes)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_f34fc3596945d837\rt68cx21x64.sys [458136 2021-07-26] (Microsoft Windows Hardware Compatibility Publisher - & gt; Realtek)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [48848 2021-04-06] (SteelSeries ApS - & gt; SteelSeries ApS)
R3 sshid; C:\WINDOWS\system32\DRIVERS\sshid.sys [48800 2022-03-01] (SteelSeries ApS - & gt; SteelSeries ApS)
R3 SteelSeries_Sonar_VAD; C:\WINDOWS\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_689082cfb8a03f07\SteelSeries-Sonar-VAD.sys [80200 2022-01-06] (SteelSeries ApS - & gt; Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49600 2022-04-08] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [443664 2022-04-08] (Microsoft Windows - & gt; Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-08] (Microsoft Windows - & gt; Microsoft Corporation)
S0 FACEIT; System32\Drivers\FACEIT.sys [X]
U4 vlflt; Brak ImagePath
==================== NetSvcs (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
==================== Jeden miesiąc (utworzone) (filtrowane) =========
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
2022-05-11 12:07 - 2022-05-11 12:07 - 000028925 _____ C:\Users\Marcin\Downloads\FRST.txt
2022-05-11 12:05 - 2022-05-11 12:05 - 000194512 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2022-05-11 12:05 - 2022-05-11 12:05 - 000181992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2022-05-11 12:05 - 2022-05-11 12:05 - 000070088 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2022-05-11 12:05 - 2022-05-11 12:05 - 000000000 ____D C:\Users\Marcin\AppData\LocalLow\IGDump
2022-05-11 12:03 - 2022-05-11 12:04 - 000000000 ____D C:\AdwCleaner
2022-05-11 12:03 - 2022-05-11 12:03 - 000000008 __RSH C:\ProgramData\ntuser.pol
2022-05-11 12:02 - 2022-05-11 12:02 - 008551608 _____ (Malwarebytes) C:\Users\Marcin\Downloads\adwcleaner.exe
2022-05-11 11:55 - 2022-05-11 12:07 - 000000000 ____D C:\FRST
2022-05-11 11:54 - 2022-05-11 11:54 - 002366976 _____ (Farbar) C:\Users\Marcin\Downloads\FRST64.exe
2022-05-11 11:49 - 2022-05-11 11:49 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Ookla
2022-05-11 11:48 - 2022-05-11 11:48 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2022-05-11 10:24 - 2022-05-11 10:24 - 000000000 ___HD C:\$WinREAgent
2022-05-10 12:34 - 2022-05-10 12:34 - 000085759 _____ C:\Users\Marcin\Downloads\Invoice_M.Kot_04.2022.pdf
2022-05-09 22:41 - 2022-05-09 22:41 - 000239560 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-05-09 22:41 - 2022-05-09 22:41 - 000103888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2022-05-09 22:41 - 2022-05-09 22:41 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2022-05-09 22:41 - 2022-05-09 22:41 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2022-05-09 22:41 - 2022-05-09 22:41 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2022-05-09 22:41 - 2022-05-09 22:41 - 000000000 ____D C:\Users\Marcin\AppData\Local\mbam
2022-05-09 22:41 - 2022-05-09 22:41 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-05-09 22:41 - 2022-05-09 22:41 - 000000000 ____D C:\Program Files\Malwarebytes
2022-05-09 22:40 - 2022-05-09 22:40 - 002443448 _____ (Malwarebytes) C:\Users\Marcin\Downloads\MBSetup.exe
2022-05-09 16:46 - 2022-05-09 16:48 - 000000000 ____D C:\Users\Marcin\Downloads\Ratiborus KMS Tools December (01.12.2019) (Office And Windows Activators) {B4tman}
2022-05-09 16:25 - 2022-05-11 12:05 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\dll-propagation
2022-05-09 11:30 - 2022-05-11 12:05 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\services
2022-05-09 11:30 - 2022-05-09 16:25 - 000000000 ___HD C:\Users\Marcin\AppData\Roaming\.dllbackups
2022-05-09 11:30 - 2022-05-09 11:30 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\dllservices
2022-05-09 11:03 - 2021-11-09 11:09 - 000009966 _____ C:\Users\Marcin\OneDrive\Dokumenty\Scrap.xlsx
2022-05-08 15:52 - 2022-05-08 15:52 - 000000000 ____D C:\Users\Marcin\OneDrive\Dokumenty\VEGAS
2022-05-06 10:16 - 2022-05-09 11:07 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2022-05-05 18:32 - 2022-05-09 11:07 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-05-04 13:51 - 2022-05-04 13:51 - 000488069 _____ C:\Users\Marcin\Downloads\Wyciagi_dla_Konto_Direct_dla_Firmy_w_PLN_.zip
2022-05-04 13:51 - 2022-05-04 13:51 - 000000000 ____D C:\Users\Marcin\Downloads\Wyciagi_dla_Konto_Direct_dla_Firmy_w_PLN_
2022-05-04 12:57 - 2022-05-04 12:57 - 000007879 _____ C:\Users\Marcin\Downloads\JPK_JPKV7_metadane_04-05-2022 (2) (1).xml
2022-05-04 12:56 - 2022-05-04 12:56 - 000001609 _____ C:\Users\Marcin\Downloads\JPK_JPKV7_metadane_04-05-2022 (2).xml
2022-05-04 12:30 - 2022-05-04 12:30 - 000007879 _____ C:\Users\Marcin\Downloads\JPK_JPKV7_metadane_04-05-2022 (1).xml
2022-05-04 12:30 - 2022-05-04 12:30 - 000001609 _____ C:\Users\Marcin\Downloads\JPK_JPKV7_metadane_04-05-2022.xml
2022-05-04 11:36 - 2022-05-04 11:36 - 000561152 _____ C:\Users\Marcin\Downloads\Załącznik 4_1-35 - Szczegółowy OPZ (1).xls
2022-05-04 10:18 - 2022-05-04 10:18 - 000000000 ____D C:\Users\Marcin\OneDrive\Dokumenty\Review
2022-05-03 18:39 - 2022-05-03 18:41 - 000000000 ____D C:\Users\Marcin\Downloads\Windows 11 X64 Pro Activated + Office 2016 en-US FEB TPM BYPASSED 2022 - CzOS
2022-05-02 08:43 - 2022-05-02 09:00 - 000444959 _____ C:\Users\Marcin\OneDrive\Dokumenty\Review.zip
2022-05-02 08:43 - 2022-05-02 09:00 - 000016275 _____ C:\Users\Marcin\OneDrive\Dokumenty\CEEG-ALL-URLs.xlsx
2022-04-30 19:46 - 2022-04-30 19:46 - 000001657 _____ C:\Users\Marcin\Desktop\World of Tanks EU.lnk
2022-04-30 19:45 - 2022-04-30 23:01 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Wargaming.net
2022-04-30 19:45 - 2022-04-30 19:46 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2022-04-30 19:45 - 2022-04-30 19:45 - 000001892 _____ C:\Users\Marcin\Desktop\Game Center.lnk
2022-04-30 19:44 - 2022-04-30 19:44 - 006490328 _____ (Wargaming.net ) C:\Users\Marcin\Downloads\world_of_tanks_install_eu_cjnrf23ycbi5.exe
2022-04-30 19:44 - 2022-04-30 19:44 - 000000000 ____D C:\ProgramData\Wargaming.net
2022-04-30 11:01 - 2022-04-28 11:37 - 010338228 _____ C:\Users\Marcin\OneDrive\Dokumenty\PL_Panasonic_Social Content_6 Blade_Copy Matrix_EN - Copy (3).xlsx
2022-04-29 12:14 - 2022-05-04 15:36 - 000047872 _____ C:\Users\Marcin\OneDrive\Dokumenty\INTERNAL - Spring TV event QA.xlsx
2022-04-27 16:40 - 2022-04-27 16:40 - 001108467 _____ C:\Users\Marcin\Downloads\WBA3N9C54EF721711.pdf
2022-04-25 14:58 - 2022-04-25 14:58 - 000000000 ____D C:\Users\Marcin\Downloads\S5___V24
2022-04-25 14:55 - 2022-04-25 14:56 - 087765725 _____ C:\Users\Marcin\Downloads\S5___V24.zip
2022-04-19 21:14 - 2022-04-19 21:14 - 000001865 _____ C:\Users\Marcin\Desktop\UniFi.lnk
2022-04-19 21:14 - 2022-04-19 21:14 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubiquiti UniFi
2022-04-19 21:13 - 2022-04-19 21:13 - 000192736 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2022-04-19 21:13 - 2022-04-19 21:13 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Sun
2022-04-19 21:13 - 2022-04-19 21:13 - 000000000 ____D C:\Users\Marcin\AppData\LocalLow\Sun
2022-04-19 21:13 - 2022-04-19 21:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-04-19 21:13 - 2022-04-19 21:13 - 000000000 ____D C:\Program Files\Java
2022-04-19 21:12 - 2022-04-19 21:21 - 000000000 ____D C:\Users\Marcin\Ubiquiti UniFi
2022-04-19 21:12 - 2022-04-19 21:12 - 171653160 _____ (Ubiquiti Inc.) C:\Users\Marcin\Downloads\9363-windows-7.0.25-e6054a25351748e699a6edbff2da5e2a.exe
2022-04-19 21:12 - 2022-04-19 21:12 - 086960840 _____ (Oracle Corporation) C:\Users\Marcin\Downloads\jre-8u331-windows-x64.exe
2022-04-19 20:41 - 2022-04-19 20:41 - 077196696 _____ C:\Users\Marcin\Downloads\torbrowser-install-win64-11.0.10_en-US.exe
2022-04-19 20:41 - 2022-04-19 20:41 - 000000865 _____ C:\Users\Marcin\Desktop\Start Tor Browser.lnk
2022-04-19 20:41 - 2022-04-19 20:41 - 000000000 ____D C:\Users\Marcin\Desktop\Tor Browser
2022-04-19 20:37 - 2022-04-19 20:37 - 000146862 _____ C:\Users\Marcin\Downloads\FQtn2tEXIAMkcHW.jfif
2022-04-18 20:49 - 2022-04-18 20:49 - 000031871 _____ C:\Users\Marcin\Downloads\Potwierdzenie_transakcji_nr_0130808748_180422.pdf
2022-04-18 20:49 - 2022-04-18 20:49 - 000031839 _____ C:\Users\Marcin\Downloads\Potwierdzenie_transakcji_nr_0130808746_180422.pdf
2022-04-18 19:45 - 2022-04-18 19:52 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\obs-studio
2022-04-18 19:44 - 2022-04-18 19:44 - 000001052 _____ C:\Users\Public\Desktop\OBS Studio.lnk
2022-04-18 19:44 - 2022-04-18 19:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2022-04-18 19:43 - 2022-04-18 19:44 - 000000000 ____D C:\Program Files\obs-studio
2022-04-18 19:40 - 2022-04-18 19:40 - 117961440 _____ (OBS Project) C:\Users\Marcin\Downloads\OBS-Studio-27.2.4-Full-Installer-x64.exe
2022-04-18 19:06 - 2022-04-18 19:06 - 000000000 ____D C:\Users\Marcin\OneDrive\Dokumenty\CalibrationFiles
2022-04-18 19:06 - 2022-04-18 19:06 - 000000000 ____D C:\Users\Marcin\OneDrive\Dokumenty\AsBuiltData
2022-04-16 17:38 - 2022-04-16 17:38 - 000047288 _____ C:\Users\Marcin\Downloads\Wyciag_dla_Konto_Direct_dla_Firmy_w_PLN__31.08.2021.pdf
2022-04-16 17:37 - 2022-04-16 17:37 - 000047975 _____ C:\Users\Marcin\Downloads\Wyciag_dla_Konto_Direct_dla_Firmy_w_PLN__31.10.2021.pdf
2022-04-16 17:37 - 2022-04-16 17:37 - 000047706 _____ C:\Users\Marcin\Downloads\Wyciag_dla_Konto_Direct_dla_Firmy_w_PLN__30.09.2021.pdf
2022-04-15 21:54 - 2022-04-15 21:54 - 000000000 ____D C:\Users\Marcin\Downloads\Telegram Desktop
2022-04-15 11:23 - 2022-04-15 11:23 - 001420720 _____ C:\Users\Marcin\Desktop\WBSKG9C55DJ594755.pdf
2022-04-15 09:06 - 2022-04-15 09:06 - 000012303 _____ C:\Users\Marcin\OneDrive\Dokumenty\TV GT Group wymogi ustawy-1 (2).xlsx
2022-04-14 21:54 - 2022-04-14 21:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTG Arena
2022-04-14 14:56 - 2022-04-14 14:56 - 000015192 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-04-14 11:38 - 2022-05-10 10:36 - 000186085 _____ C:\Users\Marcin\Desktop\PROCEDURA.pdf
2022-04-13 21:01 - 2022-03-22 20:14 - 000014998 _____ C:\Users\Marcin\OneDrive\Dokumenty\tv_specs_da.xlsx
2022-04-11 14:49 - 2022-04-11 14:58 - 000078336 _____ C:\Users\Marcin\OneDrive\Dokumenty\TV Copy of TC_PL-pl_202204060849.xls
2022-04-11 09:55 - 2022-04-11 09:55 - 000216503 _____ C:\Users\Marcin\Downloads\KM8J3CA20HU497273.pdf
2022-04-11 09:54 - 2022-04-11 09:54 - 000241874 _____ C:\Users\Marcin\Downloads\Window Sticker.pdf
==================== Jeden miesiąc (zmodyfikowane) ==================
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
2022-05-11 12:07 - 2021-12-07 17:20 - 000000000 ____D C:\Program Files (x86)\Google
2022-05-11 12:05 - 2021-11-06 23:17 - 000000000 ____D C:\Program Files\TeamViewer
2022-05-11 12:05 - 2021-10-08 13:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-05-11 12:05 - 2021-08-12 10:02 - 000000000 ____D C:\ProgramData\NVIDIA
2022-05-11 12:05 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-05-11 12:05 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-05-11 12:05 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-05-11 12:05 - 2021-05-15 00:47 - 000000000 ___RD C:\Users\Marcin\OneDrive
2022-05-11 12:05 - 2021-05-15 00:42 - 000012288 ___SH C:\DumpStack.log.tmp
2022-05-11 12:04 - 2021-06-05 14:01 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-05-11 11:55 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2022-05-11 11:55 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2022-05-11 11:53 - 2021-10-08 13:41 - 001794264 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-05-11 11:53 - 2021-06-05 19:37 - 000796720 _____ C:\WINDOWS\system32\perfh015.dat
2022-05-11 11:53 - 2021-06-05 19:37 - 000157826 _____ C:\WINDOWS\system32\perfc015.dat
2022-05-11 11:53 - 2021-06-05 14:09 - 000000000 ____D C:\WINDOWS\INF
2022-05-11 11:51 - 2021-05-15 00:45 - 000000000 ____D C:\Users\Marcin\AppData\Local\D3DSCache
2022-05-11 11:03 - 2021-06-28 13:19 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\WhatsApp
2022-05-11 11:00 - 2021-05-16 16:22 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Signal
2022-05-11 10:29 - 2021-05-15 20:08 - 000000000 ____D C:\Users\Marcin\AppData\LocalLow\Mozilla
2022-05-11 10:27 - 2021-06-05 14:01 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-05-10 15:43 - 2021-06-05 14:10 - 000000000 ___HD C:\Program Files\WindowsApps
2022-05-10 15:43 - 2021-05-15 00:45 - 000000000 ____D C:\Users\Marcin\AppData\Local\Packages
2022-05-10 15:43 - 2021-05-15 00:45 - 000000000 ____D C:\ProgramData\Packages
2022-05-10 14:29 - 2021-10-08 13:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-05-10 13:12 - 2021-05-15 01:47 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Telegram Desktop
2022-05-10 13:06 - 2022-02-11 03:46 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-05-10 11:57 - 2021-05-16 20:19 - 000000000 ____D C:\ProgramData\Mozilla
2022-05-10 10:21 - 2021-10-10 20:04 - 000003472 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7bc39245a2fda
2022-05-10 10:21 - 2021-10-08 13:41 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-05-09 22:46 - 2021-06-29 13:09 - 000000000 ____D C:\Program Files (x86)\Empire Total War
2022-05-09 22:41 - 2021-06-05 14:10 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-05-09 18:43 - 2021-05-15 21:37 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\qBittorrent
2022-05-09 11:07 - 2021-05-16 20:19 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-05-08 15:30 - 2021-05-15 00:56 - 000000000 ____D C:\Users\Marcin\OneDrive\Dokumenty\Adobe
2022-05-07 16:07 - 2021-05-15 00:43 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-05-06 13:25 - 2022-03-23 21:24 - 000000000 ____D C:\Users\Marcin\Desktop\Photos
2022-05-05 19:33 - 2021-11-11 13:46 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-05-05 19:33 - 2021-11-11 13:46 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-05-03 23:30 - 2021-12-07 17:20 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-05-03 23:30 - 2021-12-07 17:20 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-05-03 12:31 - 2021-12-11 01:12 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3981766466-3332502653-323702964-1001
2022-05-03 12:31 - 2021-10-08 13:41 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3981766466-3332502653-323702964-1001
2022-05-03 12:31 - 2021-05-15 00:45 - 000002426 _____ C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-04-30 23:01 - 2021-10-18 12:54 - 000000000 ____D C:\Users\Marcin\AppData\Local\WhatsApp
2022-04-30 19:46 - 2021-06-09 00:32 - 000000000 ____D C:\Games
2022-04-30 19:45 - 2021-05-15 01:00 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-04-30 11:02 - 2021-10-08 13:27 - 000000000 ____D C:\Users\Marcin
2022-04-25 15:35 - 2022-03-27 18:58 - 000000000 ____D C:\Users\Marcin\Downloads\MAGIX VEGAS Pro v19.0.0.550 (x64) + Fix {CracksHash}
2022-04-22 00:23 - 2021-12-07 17:20 - 000003570 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-04-22 00:23 - 2021-12-07 17:20 - 000003446 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-04-19 20:41 - 2021-05-15 20:08 - 000000913 _____ C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2022-04-17 01:29 - 2021-05-15 01:33 - 000000000 ____D C:\Program Files (x86)\Steam
2022-04-15 22:42 - 2021-05-15 01:35 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2022-04-14 21:37 - 2021-05-23 00:24 - 000000000 ____D C:\Users\Marcin\NSU
2022-04-14 15:42 - 2021-10-08 13:38 - 000564856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-04-14 15:41 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemResources
2022-04-14 15:41 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-04-14 14:57 - 2021-05-15 00:47 - 143823848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-04-14 14:57 - 2021-05-15 00:47 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-04-14 14:55 - 2021-10-08 13:39 - 003102208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-04-13 22:28 - 2021-05-18 21:54 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\TS3Client
==================== Pliki w katalogu głównym wybranych folderów ========
2021-07-09 17:18 - 2021-07-09 17:18 - 000000320 _____ () C:\Program Files (x86)\build.json
2021-07-09 17:18 - 2021-07-09 17:18 - 008365560 _____ () C:\Program Files (x86)\Core.jar
2021-11-30 13:00 - 2021-11-30 13:00 - 000005811 _____ () C:\Program Files (x86)\install4jError5930121183789063362.log
2021-07-09 17:20 - 2021-07-09 17:20 - 000005633 _____ () C:\Program Files (x86)\install4jError7454716698217827847.log
2021-10-14 14:16 - 2021-10-14 14:16 - 000005811 _____ () C:\Program Files (x86)\install4jError8075288768027220943.log
2022-03-16 20:36 - 2022-03-16 20:36 - 000005811 _____ () C:\Program Files (x86)\install4jError8180449097206711394.log
2021-07-09 17:18 - 2021-07-09 17:18 - 004144219 _____ () C:\Program Files (x86)\JDownloader.jar
2021-07-09 17:18 - 2018-05-09 09:45 - 000420120 _____ (AppWork GmbH) C:\Program Files (x86)\JDownloader2.exe
2021-07-09 17:18 - 2018-05-09 09:45 - 000000033 _____ () C:\Program Files (x86)\JDownloader2.vmoptions
2021-07-09 17:18 - 2018-05-09 09:45 - 000260888 _____ (AppWork GmbH) C:\Program Files (x86)\JDownloader2Update.exe
2021-07-09 17:18 - 2018-05-09 09:45 - 000000033 _____ () C:\Program Files (x86)\JDownloader2Update.vmoptions
2021-07-09 17:18 - 2021-07-09 17:18 - 000032034 _____ () C:\Program Files (x86)\license.txt
2021-07-09 17:18 - 2021-07-09 17:18 - 000039624 _____ () C:\Program Files (x86)\license_german.txt
2021-07-09 17:18 - 2018-05-09 09:45 - 000420120 _____ (AppWork GmbH) C:\Program Files (x86)\Uninstall JDownloader.exe
2021-05-30 15:32 - 2021-08-15 12:55 - 000000002 _____ () C:\Users\Marcin\AppData\Roaming\ExplorerFavorites.txt
2021-09-12 14:57 - 2022-05-06 13:24 - 000000380 _____ () C:\Users\Marcin\AppData\Roaming\FSLog.log
2021-05-22 13:53 - 2021-05-22 13:53 - 000000000 _____ () C:\Users\Marcin\AppData\Local\oobelibMkey.log
2021-08-03 20:39 - 2021-10-06 13:31 - 000000128 _____ () C:\Users\Marcin\AppData\Local\PUTTY.RND
2021-05-16 19:54 - 2021-05-16 19:54 - 000000003 _____ () C:\Users\Marcin\AppData\Local\updater.log
2021-05-16 19:54 - 2021-05-16 19:54 - 000000424 _____ () C:\Users\Marcin\AppData\Local\UserProducts.xml
==================== FCheck ================================
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
FCheck: C:\WINDOWS\system32\SECOPatcher.dll [2021-05-15] [simlink - & gt; F:\BACKUP C 14.05.2021\MS.Office.2019.Professional.Plus.PL.Retail.x86.x64\MS.Office.2019.Professional.Plus.PL.Retail.x86.x64\KMS-VL-ALL-7.2RC2\KMS-VL-ALL-7.2RC2\64-bit\SECOPatcher.dll] [] & lt; ==== UWAGA
==================== SigCheck ============================
(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
==================== Koniec FRST.txt ========================